Rdflib Project maintains a semantic-web library focused on RDF (Resource Description Framework) parsing and manipulation, with a narrow product scope centered on the rdflib package itself. The observed vulnerability signal centers on search-path handling, reflecting the file-system access patterns inherent to a parsing library that processes external data sources.
The number and severity of CVEs published that impact products developed by Rdflib Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-7653CRITICAL The Debian python-rdflib-tools 4.2.2-1 package for RDFLib 4.2.2 has CLI tools that can load Python modules from the current working directory, allowing code injection, because "pyt | Feb 9, 2019 | 9.8 | 31 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Rdflib Project.
Media articles that mention a CVE ID that affects a product developed by Rdflib Project — matched by CVE ID, not by vendor name.